Cybersecurity Incident Response & Threat Detection Analyst New Columbus, OH

Electrosoft

Columbus (OH)

Hybrid

USD 90,000 - 130,000

Full time

4 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Electrosoft Services, LLC is seeking a Cybersecurity Incident Response & Threat Detection Analyst in Columbus, OH. You will participate in 24x7 monitoring, detect and respond to threats, and analyze events to identify attacks or compromises.

The role requires hands-on experience with SIEM, threat intel, and defense-in-depth strategies, plus the ability to script in SPL, Python, or PowerShell. A security clearance is mandatory.

Qualifications

  • Five or more years of relevant cybersecurity experience.
  • Two years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two security tools: Firewall, IDS/IPS, HBA, DLP, VM, Forensics, Malware Analysis, Device Hardening.
  • Understanding of Defense-in-Depth.
  • Ability to build scripts and tools to enhance threat detection and incident response (SPL, Python, PowerShell).
  • Must possess IT-I/ Tier 5 security clearance or higher at proposal submission.
  • Must possess a DoD Top Secret Clearance and be eligible for SCI access.

Responsibilities

  • Participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to threats.
  • Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.
  • Reviews logged events for trends indicating attack or compromise within the environment.
  • Monitors logs and traffic for APT and low-and-slow attacks; uses OSINT to stay aware of threats.
  • Provides technical analysis and sustainment support for cybersecurity tools and applications.

Skills

Five+ years experience
Root cause analysis
Scripting in SPL/Python/PowerShell
Defense-in-Depth
Threat detection
Security clearance IT-I/T5

Tools

Firewall
IDS/IPS
Host-based antivirus
Data Loss Prevention
Vulnerability Management
Forensics
Malware Analysis
Device Hardening

Job description

Cybersecurity Incident Response & Threat Detection Analyst

Columbus, OH

Electrosoft Services, LLC is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. While cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent automation. We always seek to delight our customers, so we retain highly qualified employees and offer them meaningful work, growth opportunities, and work-life balance. What sets us apart from all other contractors is the sense of teamwork our employees feel – and the knowledge that outstanding effort is recognized and rewarded. The camaraderie we share emanates from Lunch & Learn sessions where we explore new ideas together, fun group activities ranging from escape rooms to miniature golf, and much, much more. If we’ve described you and your dream workplace, please apply and share in the many benefits and opportunities we offer.

Cybersecurity Incident Response & Threat Detection Analyst

Participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment. Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity. Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats. Reviews logged events for trends that are indicative of attack or compromise within the environment. Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the environment. Maintains awareness of possible threats with the use of intelligence resources which include Open-Source Intelligence (OSINT). Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats.

  • Five (5) years relevant experience
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening
  • Understanding of Defense-in-Depth
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)
  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access
Electrosoft is an Equal Opportunity Employer/Veterans/Disabled

As set forth in Electrosoft’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.

As set forth in Electrosoft’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Threat Hunter New Columbus, OH
Cybersecurity Threat Hunter New Columbus, OH

Electrosoft • Columbus (OH)

Hybrid
USD 105,000 - 145,000
Cybersecurity Policy Analyst New Columbus, OH
Cybersecurity Policy Analyst New Columbus, OH

Electrosoft • Columbus (OH)

Hybrid
USD 90,000 - 140,000
Operational Technology Threat Intelligence Analyst New Columbus, OH
Operational Technology Threat Intelligence Analyst New Columbus, OH

Electrosoft • Columbus (OH)

Hybrid
USD 90,000 - 130,000
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

Feditc, Llc. • Tampa (FL)

Hybrid
USD 90,000 - 140,000
Engineering Subject Matter Specialist (SSE Cyber)
Engineering Subject Matter Specialist (SSE Cyber)

Feditc, Llc. • Warren (MI)

On-site
USD 90,000 - 130,000
Network Engineer SME – Cisco
Network Engineer SME – Cisco

Electrosoft • Atlanta (GA)

On-site
USD 150,000 - 170,000
Cybersecurity Engineer
Cybersecurity Engineer

Electrosoft • Fort Belvoir (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer - Vulnerability Scanning
Cybersecurity Engineer - Vulnerability Scanning

Electrosoft • Richmond (VA), Columbus (OH)

On-site
USD 120,000 - 130,000
Sr. Network/Systems Engineer New Remote, US
Sr. Network/Systems Engineer New Remote, US

AGE • Northern (KY)

Remote
USD 135,000 - 180,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5
DevSecOps Engineer
DevSecOps Engineer

Electrosoft • Arlington (VA)

On-site
USD 130,000 - 190,000